Canonical Ubuntu Linux vulnerabilities
4,117 known vulnerabilities affecting canonical/ubuntu_linux.
Total CVEs
4,117
CISA KEV
46
actively exploited
Public exploits
275
Exploited in wild
85
Severity breakdown
CRITICAL546HIGH1402MEDIUM1947LOW222
Vulnerabilities
Page 186 of 206
CVE-2013-1799P4MEDIUMCVSS 4.3v11.10v12.04+1 more2013-04-02
CVE-2013-1799 [MEDIUM] CVE-2013-1799: Gnome Online Accounts (GOA) 3.6.x before 3.6.3 and 3.7.x before 3.7.91, does not properly validate S
Gnome Online Accounts (GOA) 3.6.x before 3.6.3 and 3.7.x before 3.7.91, does not properly validate SSL certificates when creating accounts for providers who use the libsoup library, which allows man-in-the-middle attackers to obtain sensitive information such as credentials by sniffing the network. NOTE: this issue exists because of an incomplete fix for CVE-
nvd
CVE-2019-15031P4MEDIUMCVSS 4.4v12.04v14.04+3 more2019-09-13
CVE-2019-15031 [MEDIUM] CWE-662 CVE-2019-15031: In the Linux kernel through 5.2.14 on the powerpc platform, a local user can read vector registers o
In the Linux kernel through 5.2.14 on the powerpc platform, a local user can read vector registers of other users' processes via an interrupt. To exploit the venerability, a local user starts a transaction (via the hardware transactional memory instruction tbegin) and then accesses vector registers. At some point, the vector registers will be corrup
nvd
CVE-2019-5068P4MEDIUMCVSS 4.4v18.04v19.102019-11-05
CVE-2019-5068 [MEDIUM] CWE-277 CVE-2019-5068: An exploitable shared memory permissions vulnerability exists in the functionality of X11 Mesa 3D Gr
An exploitable shared memory permissions vulnerability exists in the functionality of X11 Mesa 3D Graphics Library 19.1.2. An attacker can access the shared memory without any specific permissions to trigger this vulnerability.
nvd
CVE-2016-5105P4MEDIUMCVSS 4.4v12.04v14.04+1 more2016-09-02
CVE-2016-5105 [MEDIUM] CWE-908 CVE-2016-5105: The megasas_dcmd_cfg_read function in hw/scsi/megasas.c in QEMU, when built with MegaRAID SAS 8708EM
The megasas_dcmd_cfg_read function in hw/scsi/megasas.c in QEMU, when built with MegaRAID SAS 8708EM2 Host Bus Adapter emulation support, uses an uninitialized variable, which allows local guest administrators to read host memory via vectors involving a MegaRAID Firmware Interface (MFI) command.
nvd
CVE-2020-16120P4MEDIUMCVSS 4.4v14.04v16.04+2 more2021-02-10
CVE-2020-16120 [MEDIUM] CWE-266 CVE-2020-16120: Overlayfs did not properly perform permission checking when copying up files in an overlayfs and cou
Overlayfs did not properly perform permission checking when copying up files in an overlayfs and could be exploited from within a user namespace, if, for example, unprivileged user namespaces were allowed. It was possible to have a file not readable by an unprivileged user to be copied to a mountpoint controlled by the user, like a removable device.
nvd
CVE-2009-4135P4MEDIUMCVSS 4.4v10.04v12.04+1 more2009-12-11
CVE-2009-4135 [MEDIUM] CWE-59 CVE-2009-4135: The distcheck rule in dist-check.mk in GNU coreutils 5.2.1 through 8.1 allows local users to gain pr
The distcheck rule in dist-check.mk in GNU coreutils 5.2.1 through 8.1 allows local users to gain privileges via a symlink attack on a file in a directory tree under /tmp.
nvd
CVE-2020-17489P4MEDIUMCVSS 4.3v20.042020-08-11
CVE-2020-17489 [MEDIUM] CWE-522 CVE-2020-17489: An issue was discovered in certain configurations of GNOME gnome-shell through 3.36.4. When logging
An issue was discovered in certain configurations of GNOME gnome-shell through 3.36.4. When logging out of an account, the password box from the login dialog reappears with the password still visible. If the user had decided to have the password shown in cleartext at login time, it is then visible for a brief moment upon a logout. (If the password we
nvd
CVE-2019-12976P4MEDIUMCVSS 5.5v16.04v18.04+2 more2019-06-26
CVE-2019-12976 [MEDIUM] CWE-401 CVE-2019-12976: ImageMagick 7.0.8-34 has a memory leak in the ReadPCLImage function in coders/pcl.c.
ImageMagick 7.0.8-34 has a memory leak in the ReadPCLImage function in coders/pcl.c.
nvd
CVE-2019-12975P4MEDIUMCVSS 5.5v16.04v18.04+2 more2019-06-26
CVE-2019-12975 [MEDIUM] CWE-401 CVE-2019-12975: ImageMagick 7.0.8-34 has a memory leak vulnerability in the WriteDPXImage function in coders/dpx.c.
ImageMagick 7.0.8-34 has a memory leak vulnerability in the WriteDPXImage function in coders/dpx.c.
nvd
CVE-2015-8035P4LOWCVSS 2.6v14.042015-11-18
CVE-2015-8035 [LOW] CWE-399 CVE-2015-8035: The xz_decomp function in xzlib.c in libxml2 2.9.1 does not properly detect compression errors, whic
The xz_decomp function in xzlib.c in libxml2 2.9.1 does not properly detect compression errors, which allows context-dependent attackers to cause a denial of service (process hang) via crafted XML data.
nvd
CVE-2018-10196P4MEDIUMCVSS 5.5v14.04v16.04+1 more2018-05-30
CVE-2018-10196 [MEDIUM] CWE-476 CVE-2018-10196: NULL pointer dereference vulnerability in the rebuild_vlists function in lib/dotgen/conc.c in the do
NULL pointer dereference vulnerability in the rebuild_vlists function in lib/dotgen/conc.c in the dotgen library in Graphviz 2.40.1 allows remote attackers to cause a denial of service (application crash) via a crafted file.
nvd
CVE-2016-1371P4MEDIUMCVSS 5.5v12.04v14.04+1 more2016-10-03
CVE-2016-1371 [MEDIUM] CWE-284 CVE-2016-1371: ClamAV (aka Clam AntiVirus) before 0.99.2 allows remote attackers to cause a denial of service (appl
ClamAV (aka Clam AntiVirus) before 0.99.2 allows remote attackers to cause a denial of service (application crash) via a crafted mew packer executable.
nvd
CVE-2018-7730P4MEDIUMCVSS 5.5v14.04v16.04+1 more2018-03-06
CVE-2018-7730 [MEDIUM] CWE-125 CVE-2018-7730: An issue was discovered in Exempi through 2.4.4. A certain case of a 0xffffffff length is mishandled
An issue was discovered in Exempi through 2.4.4. A certain case of a 0xffffffff length is mishandled in XMPFiles/source/FormatSupport/PSIR_FileWriter.cpp, leading to a heap-based buffer over-read in the PSD_MetaHandler::CacheFileData() function.
nvd
CVE-2017-9473P4MEDIUMCVSS 5.5v14.042017-06-07
CVE-2017-9473 [MEDIUM] CVE-2017-9473: In ytnef 1.9.2, the TNEFFillMapi function in lib/ytnef.c allows remote attackers to cause a denial o
In ytnef 1.9.2, the TNEFFillMapi function in lib/ytnef.c allows remote attackers to cause a denial of service (memory consumption) via a crafted file.
nvd
CVE-2017-9471P4MEDIUMCVSS 5.5v14.042017-06-07
CVE-2017-9471 [MEDIUM] CWE-125 CVE-2017-9471: In ytnef 1.9.2, the SwapWord function in lib/ytnef.c allows remote attackers to cause a denial of se
In ytnef 1.9.2, the SwapWord function in lib/ytnef.c allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted file.
nvd
CVE-2019-10018P4MEDIUMCVSS 5.5v16.04v18.04+2 more2019-03-25
CVE-2019-10018 [MEDIUM] CWE-369 CVE-2019-10018: An issue was discovered in Xpdf 4.01.01. There is an FPE in the function PostScriptFunction::exec at
An issue was discovered in Xpdf 4.01.01. There is an FPE in the function PostScriptFunction::exec at Function.cc for the psOpIdiv case.
nvd
CVE-2016-0665P4MEDIUMCVSS 5.5v12.04v14.04+1 more2016-04-21
CVE-2016-0665 [MEDIUM] CVE-2016-0665: Unspecified vulnerability in Oracle MySQL 5.6.28 and earlier and 5.7.10 and earlier allows local use
Unspecified vulnerability in Oracle MySQL 5.6.28 and earlier and 5.7.10 and earlier allows local users to affect availability via vectors related to Security: Encryption.
nvd
CVE-2008-5502P4MEDIUMCVSS 5.0v8.04v8.102008-12-17
CVE-2008-5502 [MEDIUM] CWE-399 CVE-2008-5502: The layout engine in Mozilla Firefox 3.x before 3.0.5, Thunderbird 2.x before 2.0.0.19, and SeaMonke
The layout engine in Mozilla Firefox 3.x before 3.0.5, Thunderbird 2.x before 2.0.0.19, and SeaMonkey 1.x before 1.1.14 allows remote attackers to cause a denial of service (crash) via vectors that trigger memory corruption, related to the GetXMLEntity and FastAppendChar functions.
nvd
CVE-2018-15861P4MEDIUMCVSS 5.5v14.04v16.04+1 more2018-08-25
CVE-2018-15861 [MEDIUM] CWE-476 CVE-2018-15861: Unchecked NULL pointer usage in ExprResolveLhs in xkbcomp/expr.c in xkbcommon before 0.8.2 could be
Unchecked NULL pointer usage in ExprResolveLhs in xkbcomp/expr.c in xkbcommon before 0.8.2 could be used by local attackers to crash (NULL pointer dereference) the xkbcommon parser by supplying a crafted keymap file that triggers an xkb_intern_atom failure.
nvd
CVE-2018-15863P4MEDIUMCVSS 5.5v14.04v16.04+1 more2018-08-25
CVE-2018-15863 [MEDIUM] CWE-476 CVE-2018-15863: Unchecked NULL pointer usage in ResolveStateAndPredicate in xkbcomp/compat.c in xkbcommon before 0.8
Unchecked NULL pointer usage in ResolveStateAndPredicate in xkbcomp/compat.c in xkbcommon before 0.8.2 could be used by local attackers to crash (NULL pointer dereference) the xkbcommon parser by supplying a crafted keymap file with a no-op modmask expression.
nvd